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Abstract 

We present three contributions to the understanding of QMA with multiple provers: 

• We give a tight soundness analysis of the protocol of [Blier and Tapp, ICQNM '09], yielding a 
soundness gap fl(N~ 2 ), which is the best-known soundness gap for two-prover QMA protocols 
with logarithmic proof size. Maybe surprisingly, our improvement is achieved without the use 
of an instance with a constant soundness gap (i.e., without using a "PCP"); this is unlike 
the previously best-known soundness gap of fl(N~ 3 ~ £ ) given by [Beigi, QIC '10], which was 
achieved using a (balanced) 2-out-of-4 instance with constant soundness gap. 

• We give a tight soundness analysis of the protocol of [Chen and Drucker, ArXiV '10], thereby 
improving their result from a "monolithic" protocol where ®(y/~N) provers are needed in order 
to have any soundness gap, to a protocol with a smooth trade-off between the number of 
provers re and a soundness gap £l(n 2 N~ r ), as long as re € f2(log N). (And, when re € Q(\/~N), 
we recover the original parameters of Chen and Drucker.) Further, we explain why even 
our tight analysis cannot give any soundness gap for the "re € 0(1) regime", implying that 
new protocols are needed for any "sublinear" constant-prover LOCC QMA protocol with an 
inverse-polynomial soundness gap. 

• We make partial progress towards an open question of [Aaronson et al., ToC '09] about what 
kinds of NP-complete problems are amenable to "sublinear" multiple-prover QMA protocols, 
by observing that a large class of such examples can easily be derived from results already in 
the PCP literature — namely, at least the languages recognized by a non-deterministic RAMs 
in quasilinear time. We also take the opportunity to give generic lemmas that allow for such 
results to be stated in a more general (and unified) way. 



* Email: alexch@csail.mit.edu. 
t Email: miforbes@mit.edu. 
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1 Introduction 



The class QMA is the natural quantum analogue of NP (and MA): with the help of a quantum 
proof (given by the all-powerful "Merlin"), a quantum polynomial-time verifier ("Arthur") attempts 
to decide whether an input string x is in a given language L or not; this class was first studied by 
Knill [Kni96], Kitaev [Kit99], and Watrous [WatOO]. For more details, see the survey of Aharonov and 
Naveh [AN02]. 

Kobayashi et al. [KMY03] first introduced and studied the class QMA(k), where Arthur receives 
k G [2, poly(AQ] quantum proofs that are promised to be unentangled. While multiple proofs in the 
classical case do not increase the power of the class (i.e., "NP(/c) = NP" and "MA(k) = MA"), there 
is some evidence that multiple unentangled proofs in the quantum case are in fact more powerful that 
one (as currently conjectured): for example, Liu et al. [LCV07] have proposed a problem, pure state 
A^-representability, that is known to lie in QMA(2) but is not known to lie in QMA; also, several works 
[BT09, BeilO, ABD + 09, CD10] have proposed multi-prover QMA protocols for certain NP languages 
whose (soundness and proof length) parameters are not known to be achievable with only one prover. 
(See Table 1 for a summary of such results.) 

Harrow and Montanaro [HM10] recently answered several important open problems regarding the 
class QMA(k), by proving that amplification within QMA(k) is possible and that QMA(poly(AQ) = 
QMA(2); the "collapse" is achieved by giving an analysis of a product test, which allows a verifier to 
use the unentanglement promise of only two registers to ensure that states within a single register are 
close to a separable state. 

Brandao et al. [BaCJIO, Corollary 4] prove (among other things) that two-prover QMA protocols 
where the verifier is restricted to LOCC measurements only can be simulated by a single prover QMA 
protocol, incurring only in a quadratic increase in total proof length. In particular, for example, this 
implies that a two-prover QMA protocol for 3SAT with an LOCC verifier and total proof length of 
o(N) is unlikely to exist (for, otherwise, 3SAT could be solved in deterministic subexponential time). 

Particularly interesting is the gap between the "lower bound" of Brandao et al. [BaCJIO] and 
the "upper bound" results that are known for multi-prover QMA protocols for certain NP languages. 
Specifically, Aaronson et al. [ABD + 09] give a 0(\/iV)-prover QMA protocol for 3SAT, with perfect 
completeness and constant soundness gap, where each prover sends 0(logAQ qubits; two improve- 
ments, in different directions, on this protocol are known: 

• Reducing the number of prover s. Harrow and Montanaro [HM10], through their product test, 
reduce the number of provers of [ABD + 09] to only two, thereby obtaining a two-prover QMA 
protocol for 3SAT, with perfect completeness and constant soundness gap, where each prover 
sends Q(y/~N) qubits. 

• Avoiding use of the swap test (and any entangling measurement). Chen and Drucker [CD10] 
simplify the verifier of [ABD + 09] by simply not using the swap test, thereby making the verifier 
perform only LOCC (in fact, Bell) measurements; along the way, they also manage to greatly 
simplify the soundness analysis too. (Also, but less relevant: they (i) use a coloring problem as 
a starting point instead of a "structured" SAT instance, and (ii) they lose perfect completeness.) 

However, no result that improves on both directions is known; such a result, in light of the lower bound 
of Brandao et al. [BaCJIO], would be a tight upper bound (under plausible hardness assumptions). 
In this work, we are interested in studying this gap, and therefore address the following question: 

Question 1. Does there exist a two-prover QMA protocol for 3SAT, with a constant soundness gap 
and -y/npolylog(n) total number of qubits, where the verifier is only allowed to perform LOCC mea- 
surements ? 
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Table 1: A summary of the known multi-prover QMA protocols for languages in NP. The language 
2CSP(A, M, K) consists of satisfiable 2CSP instances on N vertices, with M (edge) constraints and 
an alphabet size of K; the language (2,4)SAT*(A) consists of satisfiable 2-out-of-4 balanced SAT 
instances on N variables. See Section 2 for formal definitions of these languages. 



1.1 Our Contributions 

The goal of this research was (and still is) to answer, in the positive, Question 1. Unfortunately, we 
have not succeeded yet. Nonetheless, along the way we have collected observations that we believe to 
be of interest, as well as technical contributions to existing works. 
Specifically, 

• We address an open question of Aaronson et al. [ABD + 09] about what kinds of NP-complete 
problems are amenable to "sublinear" multiple-prover QMA protocols, by observing that a large 
class of such examples can easily be derived from results already in the PCP literature. We also 
take the opportunity to give generic lemmas that allow for such results to be stated in a more 
general (and unified) way. 

• We give a tight soundness analysis of the protocol of Chen and Drucker [CD10], thereby im- 
proving their result from a "monolithic" protocol where Q{\fN) provers are needed in order to 
have any soundness gap, to a protocol with a smooth trade-off between the number of provers n 
and a soundness gap J7(k 2 A _1 ), as long as k G O(logiV). (And, when k G Q(\/N), we recover 
the original parameters of [CD10].) Further, we explain why even our tight analysis cannot give 
any soundness gap for the "k G 0(1) regime", implying that new protocols are needed for any 
"sublinear" constant-prover LOCC QMA protocol with an inverse-polynomial soundness gap. 

• We give a tight soundness analysis of the protocol of Blier and Tapp [BT09], yielding a sound- 
ness gap Q(N~ 2 ), which is the best-known soundness gap for two-prover QMA protocols with 
logarithmic proof size. Maybe surprisingly, our improvement is achieved without the use of an 
instance with a constant soundness gap (i.e., without using a "PCP"); this is unlike the previ- 
ously best-known soundness gap of Jl(iV~ 3 ~ £ ) given by Beigi [BeilO], which was achieved using 
a (balanced) 2-out-of-4 instance with constant soundness gap. 

We now discuss each of the above contributions in some more detail, while all the details are left 
to subsequent sections. At the end of this section we also briefly discuss our ideas about possible 
approaches (as well as unlikely approaches) for progress towards answering Question 1. 
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1.1.1 Languages with sublinear quantum proofs 

The main theorem of Aaronson et al. [ABD+09] is: 

Theorem 1.1 ([ABD + 09, Theorem 1]). Let (p be a satisfiable 3SAT instance with N variables and M 
clauses (and M > N). Then one can prove satisfiability of <p, with perfect completeness and constant 
soundness, using G>(\/M) unentangled quantum proofs, each with ©(log N) qubits. 

What is surprising about the result is that, for M € 0(N), the total number of qubits sent by all the 
provers to the verifier is sublinear; instead, the best known proof length in the case of only one prover 
(i.e., in the case of QMA) is linear (and we believe one cannot do better, by the Exponential-Time 
Hypothesis). 

Aaronson et al. [ABD + 09] thus raised the following question: 
Question 2. For which NP-complete problems, other than 3SAT, an analogue of Theorem 1.1 holds? 

Clearly, an analogue of Theorem 1.1 holds for any language L that can be reduced to 3SAT with 
only a polylogarithmic blow-up in instance size. (Note that the computational efficiency of the reduc- 
tion itself is irrelevant here.) However, can we say more? For example, can we say something about 
languages for which no such reduction to 3SAT is known? 

We make the observation the existing PCP literature already yields a large class of languages for 
which an analogue of Theorem 1.1 does hold: 

Claim 1.2 (Sublinear Multiple-Prover Quantum Proofs). Let L be any language that can be recognized 
in non- deterministic quasilinear time by a random-access machine. Let x be an instance in L of size 
N. Then one can prove that x is in L, with perfect completeness and constant soundness, using 
@(VN) unentangled quantum proofs, each with 0(logN) qubits. 

The starting point of Aaronson et al. [ABD + 09] was the existence of a reduction from 3SAT to 
2CSP with constant soundness gap implied by combining the results on short PCPs by Ben-Sasson and 
Sudan [BSS08] and on gap amplification by Dinur [Din07]. We simply observe that a similar reduction 
holds for any language that can be recognized in non-deterministic quasilinear time by a multi-tape 
Turing machine (a class of languages which, by a result of Gurevich and Shelah [GS89], happens 
to equal the class of languages recognized in non-deterministic quasilinear time by random-access 
machines — which are easier to understand). 

In fact, we make a much more general observation: 

Claim 1.3 (Sublinear Multiple-Prover Quantum Proofs for NTIME Languages). Let t: N — > N be any 

proper complexity function and let NTIMEram(^) be the class of languages solvable in non- deterministic 
t(n)-time by a random-access machine (RAM). For any language L £ NTIMEram(£)> it is possible to 
prove membership in L, with perfect completeness and constant soundness, using @(^t(n)) unentan- 
gled quantum proofs, each with 0(logi(n)) qubits. 1 

Again, the proof is simply the observation that any language L G NTIMEram(£) can be reduced 
to a 2CSP with constant soundness gap with tpolylog(t) vertices and edges and a constant-size color 
alphabet, and then the protocol of Aaronson et al. [ABD + 09] can be applied to obtain the claimed 
parameters. 

We also take the opportunity to clearly state the "size-efficient" reduction from NTIMEramW to 
2CSP with constant soundness, because the reduction not only generalizes the result of Aaronson et al. 
[ABD + 09] to all of NTIMEraM) but also generalizes all the other results in multi-prover QMA protocols 
(namely, [CD10], [BeilO], and [BT09]), because they too are all based on 2CSP (or languages that can 

Of course, if t is superpolynomial, we should consider verifiers that are allowed to run in time poly(t(n)). 
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be efficiently reduced to form 2CSP). For example, we state in this general form our improvements to 
[CD10] (in Claim 1.6) and to [BT09] (in Claim 1.8). 
For details, see Section 3. 

1.1.2 Technical improvements to [CD 10] 

Aaronson et al. [ABD + 09] raised the question of whether it is possible to construct a (multi-prover) 
QMA protocol with constant soundness gap and sublinear proof size for an NP-complete language, but 
using no entangled measurements. Chen and Drucker [CD10] gave a positive answer: 

Theorem 1.4 ([CD 10]). Let (p be a satisfiable 3SAT instance with N variables and M clauses (and 
M > N). Then one can prove satisfiability of if, with almost-perfect completeness and constant 
soundness, using 0(\/M) unentangled quantum proofs, each with O(logM) qubits, and by only making 
LOCC (in fact, Bell) measurements. 

The analysis of [CD10] does not give a smooth tradeoff between the number of provers and sound- 
ness, because their proof only shows a soundness gap when the number of provers is Q{y/M). We give 
a tight analysis of their protocol that yields a soundness gap for a number of provers k E ^(log N): 

Claim 1.5 (Improved soundness for [CD10]). Let if be a satisfiable 3SAT instance with N variables 
and M clauses (and M > N). Then one can prove satisfiability of(p, with completeness l — e~ n ^ and 

2 

soundness 1 — 0( N + K 5 ), using k unentangled quantum proofs, each with 0(log N) qubits, and by only 

making LOCC (in fact, Bell) measurements. Thus, for k E £l(\ogN) and k G 0(\^N), the soundness 
gap is Q(At 2 A^ _1 ). Moreover, our analysis is tight, in the sense of Remark 2. 

The improvement comes from the simple observation that the second-moment argument of [CD10] 
can be strengthened by using a one-sided Chebyshev inequality in place of the two-sided Chebyshev 
inequality. See Section 5 for more details. 

We believe that our technical improvement to [CD10] is of interest because it helps us "push the 
barrier closer" to the best two-prover LOCC QMA protocols with logarithmic proof length. We believe 
they exist, but we have not discovered one yet. 

More generally, using our observations about "size-efficient" reductions from NTIMEram(^) to 2CSP 
instances of constant soundness gap (cf. Section 3), we obtain the immediate corollary: 

Claim 1.6. Let t: N —¥ N be any proper complexity function and let L 6 NTIMEram(^)- Then 
there exists a function t! : N — > N with t'(n) G 0(t(n)polylog(i(n))) such that it is possible to prove 
membership in L D {0, 1}", with completeness 1 — e - ^^ and soundness 1 — ^{ t ^ n ^ +K i ), using w 
unentangled quantum proofs, each with 0(logi'(n)) qubits. 

1.1.3 Technical improvements to [BT09] 

The known results for two-prover QMA protocols with a polylogarithmic proof size for NP-complete 
languages are the following: 

• Blier and Tapp [BT09] give a protocol for instances of graph 3-coloring on N vertices and M 
edges that has completeness c = 1 and soundness s = 1 — Q,(N~ 6 ); and 

• Beigi [BeilO] gives a protocol for constant-gap instances of (balanced) 2-out-of-4 SAT with M 

clauses that has completeness c = | + g^v/l — jf and soundness s = c — Q(M~ 3 ~ £ ) for every 
e>0. 
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We give a tight (and more general) soundness analysis of the protocol of Blier and Tapp [BT09], 
yielding the best known soundness gap for such protocols: 

Claim 1.7 (Improved soundness for [BT09]). The protocol of Blier and Tapp [BT09] for 2CSP's on 

N vertices and M edge constraints over a K-size alphabet has soundness s = 1 — £l(N~ 2 ), assuming 
K G 0(1). Moreover, our analysis is tight, in the sense of Remark 3. 

Note that our analysis, just like the original one of Blier and Tapp [BT09], does not assume an 
instance with constant soundness gap, unlike the improvement by Beigi [BeilO] (and all other multi- 
prover QMA protocols for NP-complete languages). See Section 6 for details. 

More generally, we can use our observations about reducing NTIMEram(^) languages to 2CSP 
instances with a "quasilinear blowup in size" (cf. Section 3) to obtain the immediate corollary: 2 

Claim 1.8. Let t: N — > N be any proper complexity function and let L G NTIMEram(£)- Then 
there exists a function t! : N — > N with t'(n) G 0(i(n)polylog(i(n))) such that it is possible to prove 
membership in Ln{0, l} n , with perfect completeness and soundness 1 — Q(t'(n)~ 2 ), using 2 unentangled 
quantum proofs, each with 0( log t'(n)) qubits. 

1.1.4 On the way to a solution 

We can think of two ways of answering Question 1: an "indirect" construction and a "direct" con- 
struction. 

Indirect construction. The first step is to construct two-prover LOCC QMA protocol for 3SAT 
with ^( y^ppiyipg^ ) soundness gap and logarithmic proof size; the second step is to directly amplify 
the protocol to constant soundness, thereby obtaining the required parameters of proof length and 
soundness. (Indeed, since LOCC QMA protocols amplify "naturally" , there is no need to use a product 
test [HM10], which would have broken the LOCC property anyways, nor there is any need to invoke 
additional assumptions such as the Weak Additivity Conjecture [ABD+09, Theorem 35].) 

Through Claim 1.7 we have made some progress in this direction by improving the best-known 
soundness gap of two-prover protocols for 3SAT with a polylogarithmic proof size to £l(N~ 2 ). Unfor- 
tunately, the protocol is not LOCC and does achieve the required soundness gap of Q( ^p^j^T^y )- 
On the bright side, the protocol does not exploit the power of PCPs. We believe that an improvement 
should be possible: 

Conjecture 1. There exists a two-prover LOCC QMA protocol for 3SAT with Sl( jv po iyiog(jV) ) soundness 
gap and logarithmic proof size. 

While we believe that our understanding of two-prover protocols for NP-complete languages and 
logarithmic proof size is still far from complete, we also believe that an answer to Question 1 via an 
indirect construction is unlikely: 

Conjecture 2. There is no two-prover LOCC QMA protocol (or even a QMA protocol) for 3SAT with 
jVpoiybg(Af) ) soun dness gap and logarithmic proof size. 

We are not aware of any unlikely complexity consequences if Conjecture 2 turns out to be false. 
(Aaronson et al. [ABD+09, Footnote 2] did observe that if a weaker conjecture, where uo( jv po i y iog(Af) ) 
is replaced by 0(1), were to be true, then it would imply that QMA(2) = NEXP, which is believed to 
be unlikely.) 



2 Specifically, the corollary directly follows from invoking Claim 3.1; in this case, we happen not to exploit the constant 
soundness gap of the 2CSP instance so obtained. 
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Direct construction. A protocol with the required parameters is constructed "directly" in the sense 
of proposing an LOCC verifier test that acts on all the provided qubits at the same time, possibly 
in a much more complicated way than just repeating a simpler verifier protocol (as in the indirect 
construction). 

The main difficulty, unsurprisingly, is indeed the LOCC requirement, which, in particular, forbids 
us any use of the swap test across the two registers. Unfortunately, the swap test forms the basis of 
almost every result on properties of multiple-prover QMA, including: 

• the fact that any QMA(k) protocol with constant soundness can be simulated by a QMA(2) 
protocol with soundness [ABD+09, Theorem 36]; 

• the fact that symmetric QMA(k) with almost perfect completeness and constant soundness is 
contained in QMA(k) [ABD+09, Lemma 38]; 

• the fact that QMA(k) is contained in "QMA(|k)" with constant losses in completeness and 
soundness [KMY03, Lemma 8]; 

• the protocols of [BT09], [BeilO], [ABD+09], and [HM10]. 

Most importantly, the swap test is at the basis of the product test of Harrow and Montanaro [HM10]. 
In particular, the (natural) approach that attempts to construct a "product test type result" out of 
LOCC measurements (and apply it to, say, the protocol of [CD10]) runs into the risk of implying 
that QMA(k) = QMAlqcc(2), which, through the result of Brandao et al. [BaCJIO], would have 
the unlikely consequence of QMA(/c) = QMA. Thus, any such approach must make essential "non- 
black-box" use of the structure of the language at hand (e.g., that of 2-out-of-4 SAT) to avoid being 
a "generic" test. 

We do not have conjectures about how a direct construction might look like. 
1.2 Open Problems 

The basic Question 1 remains unanswered. We have proposed two concrete conjectures, Conjecture 1 
and Conjecture 2; we believe that any proof or disproof of these conjectures, while it might not directly 
answer Question 1 , should definitely greatly contribute towards our understanding of multiple-prover 
QMA protocols for NP languages. 

We also take the opportunity to informally conjecture that 2CSP instances with constant soundness 
gap are the "right" instances to consider for further progress, and that we only need to become better 
LOCC QMA protocol designers. 

2 Preliminaries 

Two languages and non-deterministic time. First, we define two NP languages that we will be 
working with. The first language is constraint-satisfaction problems on graphs: 

Definition 2.1 (Graph Constraint Satisfaction). Let G,= (V,E) be a graph (possibly with self-loops) 
and an alphabet X. A graph constraint-satisfaction problem is a pair C = (G, {i? e } eg £) where R e : Sx 
S — > {0, 1} for each e E E. We say that C is satisfiable if there is a labeling C : V — > S such that 
every edge predicate evaluates to 1. We say that C is 5 -satisfiable if, for every possibly labeling of the 
vertices, at most a 5 fraction of the edge predicates evaluate to 1. 

Fix positive integers N , M, and K . The class 2CSP (N , M , K) consists of satisfiable graph constraint- 
satisfaction problems over K-size alphabets on graphs of N vertices and M edges. 



7 



The second language is SAT formulae with some additional structure: 

Definition 2.2 (2-Out-Of-4 SAT). The class (2,4)SAT consists of 2- out- of -4 satisfiable 4- CNF for- 
mulae. (A 4- CNF formula is 2-out-of-A satisfiable if there is an assignment to the variables such that 
for every clause in the 4-CNF exactly two of the four variables are satisfied.) 

For brevity, we will denote (2,4)SAT* the gap-version 3 o/(2,4)SAT such that every variable appears 
in 0(1) number of clauses. 

Next, we recall the definition of a proper complexity function: 

Definition 2.3 (Proper Complexity Function). A monotonically increasing function f : N — > N is a 
proper complexity function if a multi-tape Turing machine can compute l n i— > !/(») 

in time and space 

0(f(n)). See [Pap94, Definition 7.1] for more details. 

Finally, we recall non-deterministic time complexity classes with respect to multi-tape Turing 
machines and random-access machines: 

Definition 2.4 (NTIME m j|vi). A multi-tape Turing machine is a finite state machine attached to 
multiple tapes, with one head per tape. The tapes are infinite in one direction. The machine can read 
and write to each tape, moving one cell per time step. See [Pap 94] for more details. 

That the machine is non- deterministic means that the finite state control of the Turing machine 
can non-deterministically decide its next move, such that the machine accepts if and only if there is 
some non- deterministic choice that allows it to accept. 

For a proper complexity function t, NTIME m jM(t) denotes the class of languages that can be rec- 
ognized by a t-time non- deterministic multi-tape Turing machine. 

Definition 2.5 (NTIMEram)- A random-access machine (RAM) is a list of commands that includes a 
finite number of control registers as well as an unbounded number of indexable registers. Each register 
holds an integer. Commands include addition, multiplication (with a log-cost penalty), branching on 
register contents, and indexing the registers with the contents of other registers. See [GS89] for more 
details. 

That the machine is non- deterministic means that the finite list of commands of the random- access 
machine allow non- deterministic branching to its next move, such that the machine accepts if and only 
if there is some non- deterministic choice that allows it to accept. 

For a proper complexity function t, NTIMEram(0 denotes the class of languages that can be rec- 
ognized by a t-time non- deterministic random-access machine. 

Information theory. First, we recall the classical information-theoretic notion of statistical distance 
between two probability distributions [NCOO, Sec. 9.1]: 

Definition 2.6 (Statistical Distance). Let P and Q be two probability distributions over the same 
finite set S. The statistical distance between P and Q, denoted \P — Q\ 1; is defined as the quantity 

Next, we recall its quantum analogue of trace distance [NCOO, Sec. 9.2.1]: 

3 That is, the problem of distinguishing 4-CNF formulas that are perfectly 2-out-of-4 satisfiable versus those that are 
only 1 — 2-out-of-4 satisfiable 
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Definition 2.7 (Trace Distance). The trace distance between two quantum states p and a, denoted 
\p — o\r£ r , is defined as the quantity: 



a 



If p and a commute, then they can be simultaneously diagonalized, and the trace distance between 
p and a reduces to the statistical distance between the two probability distributions induced by the 
two sets of eigenvalues of p and a. 

If p and a are two pure states \<p){4>\ and \ip){ip\ , then the trace distance between \4>){4>\ and 



simplifies [NCOO, Sec. 9.2.3] to the quantity y/1 - | (^|V>| 2 - 

Also, we recall that, given a projective measurement (i.e., a Hermitian operator) M, if P and Q 
are the probability distributions describing the outcomes obtained when measuring M on \cj>) and \ip) 
respectively, then \P — Q\ 1 < ||0)(</>| — IV'KV'I It* - ^or convenience, we will denote by dstr^(|0)) the 
distribution P, and simply dstr(|</>)) when M is assumed to be a full computational basis measurement. 

Swap test. Buhrman et al. [BCWdWOl] introduced the swap-test on two quantum states p and a, 
given by the following quantum circuit: 



|o> -\h_ 

\p) — 



H 



= b 



SWAP 



Essentially, the swap-test measures the overlap between two quantum states, because 

Pr[6 = ] = i±^!, 

i.e., if p = a, then the swap-test always yields the outcome 0, if instead p / a, then the probability of 
measuring is directly proportional to the overlap between p and a. In particular, if one wishes to use 
the swap test in order to check whether two quantum states are equal or not, then the probability of 
discovering that they are in fact not equal (i.e., the test "rejects") is equal to (1 — Tr(p<r))/2. Note that 
if p and a are two pure states \4>){4>\ and , then the probability above is equal to (1 — | (4>\tp) | 2 )/2; 

for convenience, we denote this probability by REJ(Swap(|^), \tp))) ■ 

If the probability that the swap test rejects two quantum states is bounded above, then the 
statistical distance between the two probability distributions arising when measuring the two quantum 
states (in any basis) is also bounded above: 

Lemma 2.1. Let \<j>) and \tp) be quantum states and 5 a number in [0, 1]. If REJ(Swap(|<^>), |V'))) < 5, 
then |dstr(|0>) - dstr(|-0))| a < V26- 

Proof. Recall that REJ (Swap(|0), \if>))) =\- KM!!, so that 

|dstr(|0» - dstrdV))!! < ||</>X</>| - I^XVI l Tr = V 1 " I ^) I' ^ ^5 . 

□ 

Quantum Fourier transform. Finally, we recall the quantum Fourier transform: 

Definition 2.8 (Quantum Fourier Transform). Let H n be an n-dimensional Hilbert space with or- 
thonormal basis {|0), . . . , \n — 1)}. The n-dimensional quantum Fourier transform, denoted F n , is the 
linear operator whose action on the basis vector \ j), j G {0, 1 . . . ,n — 1}, is given by 

_. 71—1 
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We recall that F n is a unitary operator. Also, we will denote by |0p n ) the image of |0) under F n , 
and it satisfies the following equation: 

|Q) + |l) + ... + |n-l) 



n 



For more details on the quantum Fourier transform, see [NCOO, Ch. 5]. 

Quantum proofs. In an K-prover QMA protocol, the BQP verifier (Arthur) receives a classical 
input x € {0, 1}* together with k quantum proofs l^ 7 ^ 1 ^), . . . , sent by the k provers (Merlins); 

the provers (and thus the quantum proofs they send) are promised to be unentangled. The verifier 
will then decide whether to accept x or not, based on all the quantum proofs he received. 

Definition 2.9 (Multi-Prover QMA). Fix a set of admissible Hermitian operators Ai (i.e., each 
M £ Ai satisfies ^ M ^ I), polynomially-bounded functions k,£: N — > N, and arbitrary functions 
s,c: N -> [0,1]. 

A language L C {0,1}* is in QMA^(k;,c, s) if there exists a polynomial-time quantum algorithm 
Vl restricted to performing measurements from Ai such that, for all inputs x 6 {0, l} n , the following 
conditions hold: 

• Completeness: If x G L, there exist n{n) quantum proofs \^^), . . . , |^I/( K ( n ))) ; each a state of at 
most I (re) qubits, such that Vl accepts with probability at least c(n) on input |a;)|\l/W) ■ ■ ■ |\I/( K ( n ))}; 
and 

• Soundness: If x L, for every n(n) quantum proofs \*S>^), . . . , each a state of at most 
£(n) qubits, Vl rejects with probability at least s(n) on input \x)\^^') ■ ■ ■ |<I/( K ( n ))). 

The class QMA^(k,c, s) is defined to be the class QMA^(k,c,s) where Ai is the set of all Hermitian 
operators. The class QMA(k, c, s) is defined to be the class QMA po | y (.)(«, c, s). The class QMA(k) is 
defined to be the class QMA(k, 2/3, 2/3). 

Note that any set of admissible Hermitian operators A4 induces a set of binary measurements, 
where each M 6 Ai means "accept" and I — M means "reject". For example, if we let Ai = Bell 
is the set of Bell measurements (non-adaptive, unentangled measurements), Ai = LOCC is the set of 
LOCC measurements (adaptive, unentangled measurements), and Ai = SEP is the set of separable 
admissible Hermitian operators (which includes the swap test and product test). 



3 Quasilinear PCPs 

In this section, we show how a few simple observations suffice to generalize the known positive results on 
multi-prover QMA protocols for NP languages (i.e., [BT09], [BeilO], [ABD+09], [CD10], and [HM10]). 
Doing so allows us to exhibit a large class of problems that qualify as positive examples to Question 2 
raised by Aaronson et al. [ABD + 09]. 

The main observation is the fact that "short" PCPs exist not only for 3SAT but, more generally, 
for every NTIME language: 

Claim 3.1 (Quasilinear PCPs for NTIME Languages). Let t : N — > N be any proper complexity function 
and let L be a language in NTIMEram(^)- Then, there exist 

• a size function Sl '■ N — > N with Sl{u) € £(n)polylog(t(n)), 

• a density function Dl- N — > N with Di(n) G i(n)polylog(i(n)) ; 

• a color constant Kl € N, 

• a reduction complexity function Cl ■ N — > N with Cl £ poly(t(re)) ; 
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• a CL-time reduction Rl : {0, 1}* — > {0, 1}* from L to 2CSP, 

• a gap constant T]l G (0,1), and 

• a regularity constant dt £ N, 

such that, for every instance x G {0, l} n , the following properties hold: 

• Efficiency: R L {x) is a 2CSP(A r , M, K) instance with N = S L (n), M = D L (n), and K = K L ; 

• Completeness: ifxeL, then Rl(x) G 2CSP(iV, M, K); 

• Soundness: if x G" L, then Rl{x) is (1 — r\ £)- satis fiable; and 

• Regularity: Rl{x) is di-regular (with self-loops). 

The claim is simply a statement about the short PCPs that are obtained by combing the works of 
Ben-Sasson and Sudan [BSS08] and Dinur [Din07], together with some simple observations about the 
generality of their results. 

Proof. Ben-Sasson and Sudan proved [BSS08, Theorem 2.2] that 

NTIME mTM (t(n)) C PCP^i [log (i(n)polylog(i(n))) , polylog(t(n))] . 

In order to construct "short" PCPs for 3SAT, Dinur: 

(i) observes [Din07, Lemma 8.3] that the result of Ben-Sasson and Sudan implies that 3SAT can be 
reduced to 2CSP instances that satisfy all the properties of the claim, with the exception that 
the soundness gap is is only l/polylog(n); and 

(ii) then she applies her main technical result of gap amplification [Din07, Theorem 1.5] to bring 
the soundness gap to a constant n. 

Then, (i) and (ii) together easily imply "short" PCPs for 3SAT [Din07, Theorem 8.1]. 

We note that Dinur's first observation, (i), only relies on the fact that 3SAT G NTIME m TM(i(ra)) 
for some tin) G npolylog(n), and a similar observation can be made for a general language L G 
NTIME m Tivi(^( n ))) which, again combined with her gap amplification result, yields the claim for lan- 
guages in NTIME mTM (t(n)). 

We choose to not state the claim for languages in NTIME m TM (£("■))> because it is not as illuminat- 
ing; it seems quite tedious (and difficult) to check whether a given language L can be recognized in non- 
deterministic t(n)-time by some multi-tape Turing machine. Instead, we observe that, by using a result 
of Gurevich and Shelah [GS89, Theorem 2], which implies that NTIME RA m(*) Q NT\ME mTM (t' (n)) for 
some t'(n) G t(n)polylog(t(n)), we obtain the claim as stated; 4 this way, the task of checking whether 
a given language is in L is in NTIMEram(^) is much simpler: one only needs to write "pseudocode" 
for the non-deterministic verifier, and prove that it halts in time i(n). □ 

Remark 1 (Other Non-Deterministic Models of Computation). On the one hand, the deterministic 
time complexity of different models of computation is not always "tightly related". For example, it 
is believed that a deterministic multi-tape Turing machine cannot simulate a generic deterministic 
t-time random-access machine in time tpolylog(t). Similar beliefs (and sometimes proofs) exist be- 
tween supposedly "weak" models of computation (such as Turing machines) and "strong" models of 
computation (such as random-access machines). 

On the other hand, surprisingly, the situation is quite different for non-deterministic models of 
computation, where, instead, it turns out that their time complexities are tightly related. For example, 
the result of [GS89] shows that, "up to polylogarithmic factors", NTIME RA m(*) = NTIME m TM (t). In 
the same paper, similar results are shown for other models, such as Kolmogorov-Uspensky machines 

4 The result of Gurevich and Shelah [GS89, Theorem 2] in fact states that NTIME RAM (n) C NTIME mT M(^polylog(n)), 
but the proof can easily be extended to show that NTIMEramW C NTIME rT , T M(i'(n)) for some t'(n) € t(n)po\y\og(t(n)) . 
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and Schonhage machines. In other words, the class NTIME(i), unlike TIME(i), is quite robust (again, 
up to polylogarithmic factors) to a choice of model of computation, so that Claim 3.1 could indeed be 
stated relative to many other models of computation. 

However, we believe the result is most useful when stated relative to random-access machines, 
because they are closest to our notion of a computer, and we can easily test our intuition about 
whether a given language L can be put in NTIME(i) for some t. 

The 2CSP instance guaranteed by Claim 3.1 is already a "nice" instance for which multiple-prover 
QMA results have been proved. For example, a 2CSP instance is the starting point of Blier and Tapp 
[BT09] and Chen and Drucker [CD10], so that we obtain generic results for both protocols. 5 See 
Claim 1.8 and Claim 1.5 for generic statements (of our improvement) of both results. 

Other works, instead, such as [ABD + 09] and [BeilO] "process the 2CSP instance further", in 
order to give it additional structure (that is exploited in their protocols). Thus, these additional 
processings also inherit the more general reduction guaranteed by Claim 3.1 for all of the languages 
in NTIME RAM (t): 

Corollary 1 (Constant-Gap Boolean Formulae for NTIME Languages). Let t: N — > N be any proper 
complexity function and let L be a language in NTIMEram^)- Then, 

(i) 3SAT Formulae: there exist 

— a size function Sl ■ N — > N with Si(n) G i(n)polylog(t(n)), 

— a density function D^: N — > N with Di(n) G i(n)polylog(t(n)), 

— a reduction complexity function Cl- N — > N with Cl G poly(t(n)), 

— a Ci-time reduction Rl '■ {0, 1}* — > {0, 1}* from L to 3SAT, and 

— a gap constant tjl G (0, 1), 

such that, for ever instance x G {0, l} n , the following properties hold: 

— Efficiency: Rl(x) is a 3SAT instance with N = Si(n) variables and M = Dl(ti) clauses; 

— Completeness: if x G L, then Rl(x) G 3SAT; and 

— Soundness: if x L, then Rl(x) is (1 — rj^-satisfiable. 

(ii) (2,4)SAT* Formulae: there exist 

— a size function Sl : N — > N with Si(n) G t(n)polylog(t(n)) ; 

— a density function D^: N — > N with Di(n) G t(n)polylog(t(n)) ; 

— a reduction complexity function Cl - N — > N with Cl G poly(t(n)), 

— a CL-time reduction R L : {0,1}* ->■ {0,1}* from L to (2,4)SAT, and 

— a gap constant t]l G (0, 1), 

— a balance constant bL G N ; 

such that, for ever instance x G {0, 1}™, the following properties hold: 

— Efficiency: Rl(x) is a 3SAT instance with N = Sl(ji) variables and M = D^(n) clauses; 

— Completeness: if x G L, then Rl{x) G 3SAT; 

— Soundness: if x G" L, then Rl(x) is (1 — rjL)-satisfiable; 

— Balance: each variable of Rl(x) appears in at most dL clauses. 

Of course, one could add more items to the above corollary, other than 3SAT and (2, 4)SAT, if 
other languages that can be efficiently reduced to from 2CSP are found to be useful. We chose to 
mention only 3SAT because of its general importance and (2, 4)SAT* because it was successfully used 
by [ABD+09] and [BeilO]. 

5 Blier and Tapp, though, do not exploit the constant soundness gap, so simply start from the classical NP-complete 
problem of graph 3-colorability. 
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The proof of the corollary was party sketched, in the particular case of t(n) = n in [ABD + 09, 
Lemma 12]. We give here the more general proof: 

Proof. To obtain (i), we argue as follows. To prove the first item, it suffices to convert the instance 
guaranteed by Claim 3.1, which is a 2CSP instance over a constant-size alphabet, into a 3SAT instance, 
in a way that preserves perfect completeness and degrades the soundness gap by at most a constant 
factor. 

First, consider a 2CSP instance over a constant-size alphabet. Observe that we can transform 
this into a CSP over a binary alphabet by allowing constraints to restrict multiple variables. As the 
original alphabet was of constant-size, this only increase the arity, number of variables, and number 
of constraints in the CSP by a constant factor. Further, the soundness gap is preserved. 

So consider now a constraint C in the CSP over variables x. By the Cook-Levin Theorem, there 
exist a 3SAT formula ipc and additional variables y such that C(x) if and only if there exists y such 
that (fc(x,y). Observe that the size of ipc is at most some constant g, because the original CSP is 
over a constant-size alphabet and has arity 2. Define the output of this reduction to be the 3SAT 
formula <p := f\ c pc- 

We now analyze the properties of (p. First, observe that the number of clauses in <p is at most g times 
the number of constraints in the original CSP, and the number of variables is also a constant-factor 
more than the number of variables in the original CSP. Further, if the original CSP was satisfiable, 
then so must be (pc, so perfect completeness is preserved. To analyze soundness, suppose that the 
original CSP was at most 5 satisfiable. Then, in any assignment to (p, at least (1 — 5) ■ E clauses 
must be unsatisfied, where E is the number of constraints in the original CSP. At there are at most 
gE clauses in ip, this means that tp can have at most 1 — satisfied clauses. Thus, there is still a 
constant soundness gap. 

To obtain (ii), we first invoke (i) so to obtain a reduction to 3SAT, and then follow the outline of 
Aaronson et al. [ABD + 09, Lemma 12]. Specifically, the instance output by the reduction guaranteed 
by (i) can first be further modified using a reduction of Papadimitriou and Yannakakis [PY91] from 
3SAT to 3SAT that makes each variable appear in at most = 29 (in fact, exactly) clauses (and 
this reduction preserves the constant soundness gap); then, we apply a reduction of Khanna et al. 
[KSTW01] (that preserves both the constant soundness gap and the balanced property of the formula) 
from 3SAT to (2,4)SAT. The reason that the outline of Aaronson et al. [ABD + 09, Lemma 12] also 
works in the general case considered in this corollary is that the number of variables and clauses 
increases only a by a constant through these two additional reductions. □ 

4 Graph States 

Let G = (V, E) be a graph with N vertices and M edges, and let E be a finite color alphabet of size 
K. The graph G and the color alphabet E will be fixed throughout the rest of the paper. 

We say that a quantum state |^) is a graph state (for G and E) if it is a quantum state over a 
Hilbert space U = (H 2 )® logN <8> (n 2 )® l ° sK - Thus, any graph state \^) can be written as 

N-l K-l 
v=0 j=0 

where ^^Tq 1 M 2 = 1 and T,f=o \Pv,j? for each v £ {0, . . . , N — 1} and j G {0, . . . ,K — 1}. (Note 
that the definition of a graph state is independent of the edge set E.) 

We believe that developing strong tools for graph-state property testing is essential for making 
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improvement towards better multi-prover QMA protocols. 6 As a first move in that direction, we give 
in the next subsection two lemmas for graph states, which were implicitly used in both [BT09] and 
[CD10] with very different parameters, and present them in a generic form. After that, we summarize 
the tests for graph states that have been used in previous protocols. 



4.1 Two Lemmas on Graph States 

Let us first introduce some simple notation: given any graph state |^), 

• for c G (0, 1], R c (\^}) is the subset of V consisting of those vertices v for which \a v \ 2 < c; 

• for c £ (0, 1], 5 C (|*)) is equal to V - i? c (|*)); 

• for j = 0, . . . , K — 1, pj(\^)) is equal to the probability of measuring j in the color register of 
the quantum state (In x Fk)\^)] and 

• for j = 0, . . . , K — 1, \^(j)) = Ylv=o 1v{j)\v) is the reduced quantum state obtained when we 
measure j in the color register of (In ® -^ft:)! 1 ^)- 

First, we prove that, as long as a color j has a large-enough probability of being measured in 
the color register of (In x i^)!^), if a vertex u has small amplitude then it will also have a small 
amplitude in the reduced state conditioned on measuring j. 

Lemma 4.1 (modified [CD10, Lemma 3], which was implicit in [BT09, Lemma 3.7]). Fix a vertex 
v € {0, . . . ,N — 1}, a color j € {0, . . . ,K — 1}, and two positive numbers c\ and C2- Then: 



( Pj -(|*»>1 and\a v \ 2 <-^) 



ciiV 



Proof. Let |X) be the quantum state obtained from |^) after performing the quantum Fourier trans- 
form on the color register of |\&), i.e., 

\X)={I N ®F K )\9) 

N-l K-l 
= (I N ® F K ) a v \v) J2 Pv,j\j) 

v=0 j=0 

N-l K-l 1 K 

k \k) 



v=0 j=0 V k=0 

j K I N-l I K-l 2 




For each v E {0, . . . , n}, let be the probability that the color register of \X) is measured j 

and the vertex register is measured v. Recalling that \"f(J)) = ^2v=o lv(j)\ v ) ^ s the reduced quantum 
state when outcome j occurs, we have that 



6 For example, we believe that a two-prover QMA L0CC protocol for 2CSP(N,0(N),0(1)) with Q(l/N) soundness gap 
and polylogarithmic proof length exists (cf. Conjecture 1), but we do not know of one yet. Our improved soundness 
analysis of [CD10] almost achieves that, and it seems that a somewhat smarter LOCC verifier should suffice. Developing 
a theory of graph-state property testing should shed some light on how to design such a verifier. 
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On the other hand, it is also the case that 

K-l 



PvA\*)) 



3=0 



a,, 



K 



K-l 



27T y/^T jk 



j=0 
K-l 



3=0 

|2 



e * 



(by Cauchy-Schwarz) 



= \a, 



We deduce that • | 7 i,(j)| 2 < | a v \ 2 or, equivalently, that 



Mj)I 2 < 



a, 



By assumption, the probability of measuring j in the color register of \X) = (Ijy (8) which is 

is at least ^. Also by assumption, ja^j 2 < Therefore, 

I |2 

I / -ni2 s \ a v\ ^ C 2 



as desired. 



□ 



Next, we prove that if a quantum state has at least one amplitude that is "far" from uniform, then 
the probability of measuring any given outcome in the Fourier basis can be upper bounded. 



Lemma 4.2. Let \y) = J2w=o 7w\v) be a quantum state. For every v G {0, . . . , N — 1}, the probability 
of measuring v in the (only) register of -FjvIt) is at most 



1 ( N ~ l 



v«> = 



,2 _ J_ 

17™ I ^ 



Proof. The probability of measuring u in the (only) register of -F/vIt) is given by 

|<7l^»| 2 • 

Observe that 



JV-1 



|dstr(| 7 ))-dstr(^»)| 1= W 



w=0 



27T y/ — 1WV 

e n 



N 



N-l 



w=0 



I |2_1 

|7™| ^ 



Recalling that |dstr(|</>)) - dstr(|?/;))| x < y/l - \ {<j)\^) | 2 , we obtain that 



/JV-1 

KtI^M^i-Me 

\u)=0 



1 7* 



iV 



as desired. 



□ 
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4.2 Summary of Tests for Graph States 

We give a brief summary and description of the tests that have been used successfully in protocols 
with graph states. The first one is the swap test, which checks whether two states are close to each 
other: 

Swap (| = 

1. Perform the swap test on the two quantum (graph) states \ip) and \4>). 

2. Accept if and only if the swap test accepts. 

See Section 2 for properties of the swap test. Another test that is often useful is the uniformity test: 
Unif(|*)) = 

1. Compute |$) = (F N <g> F K )\V). 

2. Measure the vertex and color register of |<&) in the computational basis to get outcome 

3. If j = but then reject. 

4. Accept. 

A variant of the above test is the conditional uniformity test: for any z G [0, K], 

CondUnip z (|*W),...,|*W)) ee 

1. For i = 1, . . . , as, compute = (F N ® F K )\9®). 

2. For i = 1, . . . , k, measure the vertex and color register of |<E>W) in the computational basis 
to get outcome (vi,ji). 

3. If z < \{i G {1, ...,«;} ■ ji = 0}|, then reject. 

4. For i = 1, . . . , as, if ji = but Vi / 0, then reject. 

5. Accept. 

Intuitively, the conditional uniformity test also makes sure that a significant fraction of the graph 
states are such that, when their color register is measured in the Fourier basis, the color has a 
not too small probability of occurring. Finally, the consistency test with respect to a given 2CSP 
instance C = (G, {i? e } ee s) is: 

CONS C (|f (1) ),...,|$ (K) )) EE 

1. For i = 1, . . . ,k, measure the graph state \^^') in the standard basis to get outcome (vi,ji). 

2. If there exist distinct i, i' G {1, . . . , k} such that Vi = vy but ji ^ jy, then reject. 

3. If there exist distinct i, i' G {1, . . . , k} such that (vi,v^) G E but R( VuV .,)(ji, ji>) = 0, reject. 

4. Accept. 

Throughout, we will denote by REJ(-) the rejection probability of a given test; e.g., REJ (Swap(I'I'), 1$))) 
denotes the rejection probability of the swap test on the two quantum states |\E') and !<&). 

5 An Improvement on the Soundness Analysis of [CD 10] 

In this section, we give the details for our tight soundness analysis of the two-prover QMA protocol of 
Chen and Drucker [CD10]. Specifically, we prove: 

Claim (1.5, restated). The K-prover QMA protocol for 2CSP(N, M, K) given by Algorithm 1 has 

completeness 1 — e~ n ^ and soundness 1 — ^ n+k' 1 ) > assum ^ n 9 K G 0(1); thus, for k G O(logiV) 

and k G 0(yN), the soundness gap is ^(kPN^ 1 ). Moreover, the analysis of the soundness of the 
protocol cannot be improved, in the sense of Remark 2. 
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The claim improves the status quo by giving a smooth trade-off between the number of provers 
K and the soundness gap as a function of k, whereas the soundness analysis of [CD10] only gave a 
soundness gap for k G @(yN). 

Algorithm 1: Verifier of [CD10] 

inputs: a 2CSP(A r , M, K) instance C = (G,{R e } eeE ) 
proofs: k unentangled graph states l^ 1 -*), ■ ■ ■ , 

verifier: draw r G {1, 2} at random, and perform the r-th test below: 

1. CondUnifm (l^ 1 )),...,!^))) 

100 KX ' 

2. CONS C (|^ (1) ),...,|^ (,t) )) 



Remark 2 ("Tightness" of Our Analysis). Consider a 2CSP(iV, M, K) instance C = (G,{R e } eeE ); 
suppose that C is not satisfiable, and suppose also that C has constant soundness gap r\. Hence, for 
any coloring C: V — )■ S, at least rj\E\ of the edge constraints {R e } e ^E are not satisfied. So fix any 
coloring C. 

Now suppose that the k graph states l^ 1 )), . . . , |^( K )) given to the verifier are all equal and indeed 
are a uniform superposition of all vertices with a unique color determined by C. If so, the test 
CONSc(|^'^ 1 - ) ), • • • , l^))) rejects with probability O(^r) by the Birthday Problem (indeed, we only 
have k? chances to see a particular edge in the constraint graph, and a constrained edge is seen with 
only probability G(A^ _1 ) because the graph is sparse). Thus, our analysis is "tight" in the sense that 
the assumptions we made could indeed really be the case, so one cannot hope to exhibit an even better 
soundness analysis that proves a soundness gap of uj(k 2 /N). 

Furthermore, if instead C is satisfiable (and the verifier receives uniform and equal k graph states 
l^ 1 )), . . . , |v|/( re )) with a satisfying coloring), then completeness would be only 1 — e _e ( K ) (due to the 
imperfect completeness of the conditional uniformity test). Thus, we are forced to take k G Sl(log N) 
in order for there to be any inverse-polynomial soundness gap. (In other words, the protocol of [CD10] 
has no soundness gap in the "constant regime" k G O(l); to breach the constant regime, it seems 
that one would have to strengthen the verifier with additional LOCC measurements to increase the 
soundness gap, or, at the very least, to endow the protocol with perfect completeness.) 

We now proceed to the proof of Claim 1.5, which follows closely the proof of Chen and Drucker 
[CD10]. Throughout, we use notation for graph states, which was introduced in Section 4. 

Observe that the completeness in Claim 1.5 follows exactly as in the analysis of Chen and Drucker. 
Thus, it remains to examine the soundness. Chen and Drucker [CD10, Lemma 3] gave sufficient 
conditions for an arbitrary graph state l^) to be accepted by the uniformity test UnifO^)) with 
constant probability. We first show how to use the generic lemmas of Section 4 to prove the same 
result (and these same lemmas are used with very different parameters in our soundness analysis of 
the protocol of Blier and Tapp [BT09] in Section 6). 



Lemma 5.1. Fixe G [0,1]. If p (\fy)) > 



l 

AK 



and 



> sN, then REJ(Unif(|*))) < 1 



16 ' 



Proof. For each v G R i (l^)), by invoking Lemma 4.1 with j, v, c\ = 4K, and C2 = 8K, we get 

SKN X ' 

that |7u(j)| < Trjy. In particular, we deduce that 



JV-l 

E 

w=0 



1 

N 



> 



E 



weR i (|*» 

8KN 



l 

N 



> 



8A'JV 



1 

2N 



> eN 



1 

2N 
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Next, by invoking Lemma 4.2 with I7) = we get that the probability of measuring v in the 

(only) register of -FjvItO')} * s a * most 




2 

We deduce that the probability of measuring v in the (only) register of i*jv|7U')) is at most 1 — fg> as 
desired. □ 

After establishing results of the above form, Chen and Drucker setup the hypothesis for the fol- 
lowing lemma, which is analogous to their Lemma 4. We only repeat the hypothesis, and give our 
improvements. See [CD10] for how this fits into their overall proof strategy. 

Lemma 5.2 (modified [CD10, Lemma 4]). Let G = (V,E) be a d-regular graph (possibly with self- 
loops) with N vertices, M edges, and d > 1. Let C = (G, {R e } e ) be a 2CSP on the graph G with color 
alphabet S, and suppose that C is (1 — n)-unsatisfiable. Let D\, . . . ,D K be independent distributions 
onV xE, where (i>i,Cj) denotes the output of Di. 

Suppose that for each i 6 {1, . . . , k} there exists Si C V with \Si\ > (1 — e)N such that Vi is 
uniformly distributed over Si, and e < rj/20. Then, there is a probability of at most 1 — Q £ .d{jf^z) 
such that: either e = (vi,Vj) is an edge of G and R e (ci,Cj) = 0, or V{ = Vj and Cj / Cj. 

Proof. We follow the proof of Chen and Drucker [CD10]. For i,j G {1, . . . , k}, define Vij to be an 
indicator for the event that e = (vi,Vj) is an edge of G and either R e (ci, Cj) = 0, or vi = Vj and q / Cj. 
Denote V = YliZi Ylj=i+i Observe that the result follows from bounding Pr[V = 0]. To bound 
this probability, we use Cantelli's inequality (also known as the one-sided Chebyschev inequality, cf 
[Ros84]): for a random variable X and a > 0, Prpf < E[X] - a] < Vt ]S&» ■ Thus ' takin g x = V 
and a = E(V), and using the fact that V is a non- negative random variable, we have 

pr[y = o]< „ 2™ nm -i 1 



V ) L J E[V] 2 ^ 1 

The result will then follow from an upper bound on V&r(V) and a lower bound on E[y] 2 . 
We now invoke the following facts from the analysis of [CD10]: 

(i) E[Vy] > e/N, and 

(ii) Var(V) = £4 {k 2 /N + k 3 /N 2 ). 

Hence, the upper bound for Var(^) is already given. As for the lower bound on E[V] 2 : by linearity 
of expectation and (i) above, we see that E[V] = (5)E[^j] = Vl e {K 2 /N); thus, E[V} 2 > VL £ (k^/N 2 ). 
Therefore, 

Var(l/) /k 2 /N + k 3 /N 2 \ /N + k 



E[V} 2 ~ ° £ ' d V k^/N 2 ) ~ ° £ ' d 
Combining with the above, we conclude that 

1 1 / k 2 
Pr \V = 0] < 1 - ~rj 7TT\ < 1 Trrrr <l-n £d [ — ; 

where the big-O and big-fi notation hide constants depending on e and d. □ 
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6 An Improvement on the Soundness Analysis of [BT09] 

In this section, we give the details for our tight soundness analysis of the two-prover QMA protocol of 
Blier and Tapp [BT09]. Specifically, we prove: 

Claim (1.7, restated). The two-prover QMA protocol for 2CSP(A r , M, K) given in Algorithm 2 has 
(perfect completeness and) soundness 1 — Q(N~ 2 ), assuming K G 0(1). Moreover, the analysis of the 
soundness of the protocol cannot be improved, in the sense of Remark 3. 

The claim improves the status quo for two-prover QMA protocols with polylogarithmic proof length 
in three ways: 

(i) Previously, the best known soundness gap was Q(iV -3-£ ), for every e > 0, proved by Beigi 
[BeilO]; 

(ii) The result of Beigi [BeilO] did not enjoy perfect completeness; and 

(iii) Our result does not exploit the power of PCPs, unlike the result of Beigi [BeilO]. 7 



Algorithm 2: Verifier of [BT09] 



inputs: a 2CSP(A r , M, K) instance C = (G,{R e } eeE ) 
proofs: two unentangled graph states l^ 1 )) and |\lK 2 )) 

verifier: draw r G {1,2,3} at random, and perform the r-th test below: 

1. SWAP(|*«),|*^)) 

2. CONS C (|f (1) ),|f (2) )) 

3. UNiFd^ 1 ))) A Unif(|*( 2 ))) 



Remark 3 ("Tightness" of Our Analysis). Consider a 2CSP(A r , M, K) instance C = (G,{R e } eeE ); 
suppose that C is not satisfiable, and suppose further that there exists a coloring of the vertices 
C : V — > £ for which there exists exactly one edge (v,w) G E such that R^^(C(v), C(w)) = 0. 8 

Now suppose that the two graph states I'l'W) and |^( 2 )) given to the verifier are equal and that 
they indeed are a uniform superposition of all vertices, colored with C. If so, both the first test (i.e., 
the swap test) and the third test (i.e., the two uniformity tests) accept with probability 1; however, 
the second test (i.e., the consistency test) accepts with probability that is exactly 1 — A^~ 2 . 

In other words, our analysis is "tight" in the sense that the assumptions we made could indeed 
really be the case, thus implying that one cannot hope to exhibit an even better soundness analysis 
that proves a soundness of 1 — u(N~ 2 ). 

We now proceed to the proof of Claim 1.7, which we tackle in several lemmas, whose overall struc- 
ture follows the approach taken by [BT09]. Throughout, we use notation for graph states introduced 
in Section 4. Also, given a 2CSP instance C, ColConSc(| x I' ^), l^ 2 ))) denotes only the color consis- 
tency subtest of the test Cons c (|^ (1) ), |^ (2) )) and EdgeCons c (|^ (1) ), |^ (2) )) denotes only the edge 
consistency subtest of the test CONSc (l^^^), |^^)). 

First, we show that, as long as two graph states l^ 1 )) and l^ 2 )) are "close enough" and the 
colors of the vertices are "consistent enough", then a definite color can be chosen for vertices with 

7 And, unlike the results of [ABD+09] and [CD10]. 

8 At most a constant number of unsatisfiable edges would also suffice. 
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large enough amplitude. (Indeed, if vertices with large enough amplitude were to be colored very 
inconsistently, then we would be able to catch them, through the second test.) 

Lemma 6.1 (modified [BT09, Lemma 3.4]). Fix any 2CSP instance C. Define 



and \i 



2 ■ 1600 2 K 4 iV 2 r 1600 2 if 4 iV 2 ' 

Suppose that: 

(i) REJ(Swap(|^( 1 )),|^( 2 )))) <5, and 

(ii) REJ(ColCons c (|^ (1) >,|^ (2) ))) <At. 

Then, for every vertex v G S i there exists a (unique) j € {0, . . . , K — 1} such that l/?^ 1 ]] 2 > 

" iu/n (And, similarly, for every vertex v £ S i (j^ 2 ))), there exists a (unique) j E {0, . . . , K — 1} 



100A" 



such that \/3l j 



(2) 1 2 



> 



100iC-l 

ioo a: 



Proof. First, if such a j exists, it is unique, because 



100 A - - 1 
100A" 



> i. Next suppose for the sake of 



contradiction that there exists some vertex v £ Sj_ (l^ 1 ))) for which there is no such j, so that there 

exist distinct ji,j2 € {0, . . . ,K — 1} such that l/^jj 2 , l/^jj 2 > jo&k?- 9 Then, the probability that 
the color-consistency test rejects the two graph states l^ 1 )) and l^ 2 * 1 ), is 



N-l K-l 



v=0 j=0 j'^j 



N-l K-l 

£ E E E K'fl£ 

v=0 j=0 j'jtj 



K-l 



> 



K-l 

aEE 



E EE 

2 / 



Iff") 



8JV 



8N 



8N 



3=0 j'¥=3 

2 / 



8iV 



Pv,j> 



\ 



8N 



26 



> 



> 



> 



H v ,31 



8N 
1 



(i> 

Cj2 



8iV 



1 



800i^ 2 iV V 800K 2 iV 



1 



1 



> 



800if 2 iV \800K 2 N 
1 



1 



2 • 1600 2 iT 4 iV 2 



1600 2 K 4 A^ 2 



(1) ,2 



9 Indeed, from |/3^| 2 
1} such that > £ and, from \pf) 

exists some j% 6 {0, . . . , K — 1} — {ji} such that |/3j 



K-l lfl (l),2 



(by Lemma 2.1) 



100K 
(1)|2 



andEf=o IP,, 



,2 „ 100K-1 



ff-ll < 

(D p > 

.32 — lOOK(Jf-l) 



lOOif 

1 



1, we deduce that there exists some j\ £ {0, . . . , K— 
and l^i!j| 2 > ToW > we deduce that there 



Overall, | 2 ,|/?« | 2 > 



i 

Took 2 "' 
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which contradicts the assumption that REJ(ColConSc(|^ / *- 1 ' 1 ), l^ 7 ^ 2 ^))) < /i. An analogous argument 
holds for |^( 2 )). □ 

Next, we show that, under the same assumptions as Lemma 6.1, the probability of measuring j in 
the color register of (Jjv <S> Fk)\^^) is at least for every color j € {0, . . . , K — 1}. 

Lemma 6.2 (modified [BT09, Lemma 3.5]). Fix any 2CSP instance C. Define 

1 , 1 



and /x 



1600 2 ^ 4 A^ 2 



2 • 1600 2 K 4 iV 2 
Suppose that: 

(i) REJ(Swap(|^( 1 )),|^( 2 )))) <6, and 

(ii) REJ(ColCons c (|^ (1) ),|^ (2) ))) <a*. 

Then, pj (l^ 1 ))) > ^ for every j G {0,...,K — 1}. (^4nrf, similarly, p.,- (l^ 2 ))) > ^ /or every 

je{0,...,K-i}.) 

Proof. Suppose that the vertex register of the graph state l^ 1 )) is measured and that the outcome 
is some ver tex v G {0, ... ,N - 1}. If v e from Lemma 6.1 we deduce that there ex- 



ists a (unique) color j G {0, . . . , K — 1} such that |/3 ~| 2 > 



that I/?; 



(1)|2 



lOOA'-l . 
lOOA' 



; in particular, we also deduce 



< 



Therefore, (conditioned on getting outcome v in the vertex register) the 



i " WOK • 

probability of measuring j in the color register of (I/v <8> Fk)\^^) is 



1 

~K 



K-l 



(I) 2nV=Tjv 

y 'e * 



> 



> 



K 
1 

K 
1 

K 



1 

> — 
- K 



> 



EC 



/3 ~.e k 

v,3 



v,3 



*EKi 



1 

if 

4 

5K 



WOK - 1 
100K " 

1 j 1 
~ WOK Too 



K- 



1 



100K 

1 WOK - 1 
5 ' 100K 



(by Cauchy-Schwarz) 



Now observe that Sj_ cannot be empty, for otherwise Yl,v=$ \ a v^\ 2 < N- < 1. Hence, there 

is at least one vertex v in 

S^(|^ (1) )). Thus, the probability of measuring j (with no conditioning) in 
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the color register of (Jjv <8> Fk)]^^ 1 ') is 



N-l 



w(i* (1) »=EK ) 



o=0 



2 1 



Eft 

3=1 



l e K 



> 



E 



ves i (\*W)) 

HIV 

>— E 



o 



(1) 



2 1 
if 



E<i 



(l) "iTts/^ljv 



Q 



(1) 



veS i (I*! 1 )}) 

S7V 



> 



> 



7 

5A" ' 8 
1 

4^ ' 



as desired. An analogous argument holds for |\I/( 2 )). 



□ 



Next we prove that, under the same assumptions of Lemma 6.1 and Lemma 6.2, if we further 
require that the uniform test does not reject with high probability, then we can be sure that all the 
vertices have a somewhat large amplitude. 

Lemma 6.3 (modified [BT09, Lemma 3.7]). Fix any 2CSP instance C. Define 

1 .1.1 



and n 



and v 



64KN 2 ' 



2 • 1600 2 if 4 iV 2 r 1600 2 X 4 iV2 

Suppose that: 

(i) REJ(Swap(|^( 1 )),|^( 2 )))) < 8, 

(ii) REJ(ColCons c (|^ (1) ),|^ (2) ))) and 
(Hi) REJ(Unif(|*W))) < v. 

Then, V(G) = S i (l^ 1 ))) . (And, similarly, V(G) = S^_(\^>^)) under the alternative assumption 

8KN v ' SKN V ' 

REJ(Unif(|^( 2 )))) < v instead.) 
Proof. Recall that: 

• Pj(\^^)) is the probability of measuring j in the color register of (In &> Fk)\^^), and 

• ItC?)^) = "l2v=o 7i> U)^ \ v ) * s the reduced quantum state obtained when we measure j in the 
color register of (ijv ® Fk)\^^)- 

By invoking Lemma 4.2 with (7) = the probability of measuring v in the vertex register of 

Fn\iO) ) 1S a * most 



1 



He 



hw(j) 



(i) 



1 

N 
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Also, by Lemma 6.2, ^-(l^ 1 ))) > ^ for every j G {0, . . . , K - 1}. 

Suppose now by way of contradiction that there exists some vertex v £ R i { \^^S) , so that 

SKN V ' 

lal 1 ^ 2 < 8 rl N . We can now invoke Lemma 4.1 with c\ = 4K and C2 = 8K to get that \"fv{j)^\ 2 < o¥- 



Therefore, 



JV-l 

£ 

w=0 



(i) 



l 

N 



> 



(1) 



1 

N 



> 



2N ' 



and we obtain that the probability of measuring v in the vertex register of i*iv|7(i) ) is l ess than 
Thus, the probability of measuring j in the color register but not measuring v in the vertex 



JEW 1 



register of (F/v <8) Fk)\^^) is greater than 



1 



1 



1 

4K ' 16N 2 ~ 64KN 2 ~ V ' 

Taking j = and v = 0, this contradicts the assumption that REJ(Unif(|^I / ( 1 )))) < v. An analogous 
argument holds for |\&( 2 )). □ 

Finally, we can now lower bound the soundness of the protocol: 

Lemma 6.4. Define 

1 .1.1 



2 • 1600 2 F 4 iV 2 



and \x 



and 



1600 2 K 4 iV 2 
1 



and v 



64KN 2 
min {6 , fj, , u , £} . 



and £ 



(lOOg - l) 2 
2 • 800 2 K 4 iV 2 



T/ien the overall probability of rejecting an unsatisfiable graph G is greater than s. 
Proof. If any of 

(i) REJ(Swap(|*W),|¥( 2 >))) < 5, 

(ii) REJ(ColCons c (|^ (1) ), |^ (2) ») < M, and 

(iii) REJ(Unif(|^( 1 )))) < v and REJ(Unif(|^( 2 )))) < v 

does not hold, then we are done. So suppose that (i)-(iii) hold. Define a coloring C : V(G) — > £ of 
the graph G by the rule 

C{v) := arg 



; max 

j£{0,...,K-l} 



/3 {1) 



for every vertex v. By Lemma 6.1, the coloring C is well-defined (i.e., is unique). 

Let U{G) C -E'(G) be the set of unsatisfied edges in G by the coloring C. Since G is unsatisfiable, 
\U{G)\ > 1. Therefore, REJ(EdgeCons c (|^ {1) ), |^ (2) ))), which is the probability that the edge- 
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consistency subtest rejects \^^) and |^ / *- 2 - ) ), is 



(v,w)eU(G) 



> 



E 



(v,w)eU(G) 



1 WOK - 1 



8KN WOK 



1 100A" - 1 



\U(G)\ 



> 1 



(lOOif - l) 2 
800 2 K 4 N 2 
WOK - l) 2 



800 2 iW 2 



>s . 



8KN WOK 



This concludes the proof of the lemma, as well as the proof of Claim 1.7. 



□ 
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